Bug#413269: wordpress: Should not ship with Etch

2007-03-04 Thread Alan Tam
Hi all, I agree with Moritz that wordpress may pose a problem to debian. Ubuntu has "stolen" version 2.0.2-2 from Debian 10 months ago, and I suspect it is vulnerable to 21 CVEs [1]. I am open to see how they are going to support it for 5 years. as long as upstream provides fixes in reasonable

Bug#413269: wordpress: Should not ship with Etch

2007-03-04 Thread Bastian Venthur
I agree with Martin and object to the removal of wordpress from etch. First, this would disappoint many users, second and most important: as long as upstream provides fixes in reasonable time, why should we drop such a popular package? BTW I've counted the security uploads in wordpress' changelog

Bug#413269: wordpress: Should not ship with Etch

2007-03-03 Thread Thibaut VARENE
On 3/3/07, Moritz Muehlenhoff <[EMAIL PROTECTED]> wrote: Package: wordpress Severity: serious On behalf of the Security Team I'm requesting the removal of Wordpress from Etch. There's a steady flow of security issues being found in Wordpress and we don't believe it's sanely maintainable over the

Bug#413269: wordpress: Should not ship with Etch

2007-03-03 Thread Moritz Muehlenhoff
Package: wordpress Severity: serious On behalf of the Security Team I'm requesting the removal of Wordpress from Etch. There's a steady flow of security issues being found in Wordpress and we don't believe it's sanely maintainable over the course of 30-36 months. (Etch life-time) As an example, t